> Yes, such a setup makes a server a vector in TRACE based
> cross domain exploits of certain browsers. Too bad for those
> that choose to use such browsers.
You, sir, are a cold-hearted man.
Dave Watts, CTO, Fig Leaf Software
http://www.figleaf.com/
phone: 202-797-5496
fax: 202-797-5444
[Todays Threads]
[This Message]
[Subscription]
[Fast Unsubscribe]
[User Settings]
[Donations and Support]
- OT: IIS considers "blah.com" directories to... Damien McKenna
- RE: IIS considers "blah.com" directori... Mark A. Kruger - CFG
- Re: IIS considers "blah.com" direc... Damien McKenna
- RE: IIS considers "blah.com" directori... Barney Boisvert
- Re: IIS considers "blah.com" direc... Damien McKenna
- Re: OT: IIS considers "blah.com" direc... Jochem van Dieten
- RE: OT: IIS considers "blah.com" direc... Dave Watts
- Re: OT: IIS considers "blah.com" d... Jochem van Dieten
- Dave Watts